cbcvebase.
CVE-2020-10701
published 2021-05-27

CVE-2020-10701: A missing authorization flaw was found in the libvirt API responsible for changing the QEMU agent response timeout. This flaw allows read-only connections to…

PriorityP433medium6.5CVSS 3.1
AVNACLPRLUINSUCNINAH
EPSS
0.86%
54.8th percentile
A missing authorization flaw was found in the libvirt API responsible for changing the QEMU agent response timeout. This flaw allows read-only connections to adjust the time that libvirt waits for the QEMU guest agent to respond to agent commands. Depending on the timeout value that is set, this flaw can make guest agent commands fail because the agent cannot respond in time. Unprivileged users with a read-only connection could abuse this flaw to set the response timeout for all guest agent messages to zero, potentially leading to a denial of service. This flaw affects libvirt versions before 6.2.0.

Affected

9 ranges
VendorProductVersion rangeFixed in
debianlibvirt< libvirt 6.0.0-7 (bookworm)libvirt 6.0.0-7 (bookworm)
msrccbl2_libvirt_7.10.0-1_on_cbl_mariner_2.0
msrccm1_libvirt_6.1.0-3_on_cbl_mariner_1.0
redhatlibvirt< 6.2.06.2.0
redhatlibvirt
redhatlibvirt>= 0 < 6.0.0-76.0.0-7
redhatlibvirt>= 0 < 6.0.0-76.0.0-7
redhatlibvirt>= 0 < 6.0.0-76.0.0-7
redhatlibvirt>= 0 < 6.0.0-76.0.0-7

CVSS provenance

nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
osv6.5MEDIUM
vendor_debian6.5MEDIUM
vendor_msrc6.5MEDIUM
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.